Spyware Doctor LOG Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Spyware Doctor LOG

Příspěvekod jaro3 » 27 lis 2013 17:13

Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
SRV - (HidServ) -- %SystemRoot%\System32\hidserv.dll File not found
DRV - (WDICA) -- File not found
DRV - (PDRFRAME) -- File not found
DRV - (PDRELI) -- File not found
DRV - (PDFRAME) -- File not found
DRV - (PDCOMP) -- File not found
DRV - (PCIDump) -- File not found
DRV - (lbrtfdc) -- File not found
DRV - (i2omgmt) -- File not found
DRV - (Changer) -- File not found
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKCU\..\SearchScopes,DefaultScope =
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
CHR - default_search_provider: Ask.com (Enabled)
CHR - default_search_provider: search_url = http://dts.search.ask.com/sr?src=crb&gc ... nrs=AG1&q={searchTerms}
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
@Alternate Data Stream - 144 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:CB0AACC9

:Files
C:\WINDOWS\System32\*.tmp
C:\WINDOWS\*.tmp
C:\WINDOWS\system32\*.tmp.dll
C:\WINDOWS\System32\dllcache\*.tmp
C:\WINDOWS\system32\SET*.tmp
C:\WINDOWS\system32\DUMP*.tmp
c:\windows\Tasks\*.job /s
C:\*.tmp
C:\WINDOWS\System32\drivers\*.tmp
C:\Documents and Settings\All Users\Data aplikací\*.tmp
C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy
C:\Documents and Settings\All Users\Data aplikací\Lavasoft
C:\Documents and Settings\stolní pc\Plocha\SpywareTerminatorSetup.exe
C:\Documents and Settings\All Users\Data aplikací\Avira
C:\Documents and Settings\All Users\Data aplikací\AVG2014
C:\Documents and Settings\All Users\Data aplikací\Kaspersky Lab
C:\Documents and Settings\All Users\Data aplikací\Norton
C:\Documents and Settings\All Users\Data aplikací\NortonInstaller
C:\Documents and Settings\stolní pc\Data aplikací\Ad-Aware Antivirus
C:\Documents and Settings\stolní pc\Data aplikací\AVG
C:\Documents and Settings\All Users\Data aplikací\AVG
C:\WINDOWS\System32\drivers\sp_rsdrv2.sys
C:\Documents and Settings\All Users\Data aplikací\AVAST Software
C:\Documents and Settings\stolní pc\Data aplikací\Ad-Aware Antivirus

:Reg
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" =-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" =-

:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]

Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.

Error - 26.11.2013 8:54:53 | Computer Name = PC-F5CE6C3DE1A7 | Source = EventSystem | ID = 4609
Description = Systém událostí modelu COM+ zjistil při vnitřním zpracovávání chybný
návratový kód. Hodnota HRESULT byla 80070422 z řádku 44 v d:\comxp_sp3\com\com1x\src\events\tier1\eventsystemobj.cpp.Obraťte
se na služby odborné pomoci společnosti Microsoft a informujte je o této chyb


Zkus tohle:
http://technet.microsoft.com/en-us/libr ... 4247(WS.10).aspx
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Reklama
tomaskorbas
Level 1
Level 1
Příspěvky: 58
Registrován: listopad 13
Pohlaví: Muž
Stav:
Offline

Re: Spyware Doctor LOG

Příspěvekod tomaskorbas » 27 lis 2013 21:18

All processes killed
========== OTL ==========
No active process named explorer.exe was found!
No active process named firefox.exe was found!
Service HidServ stopped successfully!
Service HidServ deleted successfully!
File %SystemRoot%\System32\hidserv.dll File not found not found.
Service WDICA stopped successfully!
Service WDICA deleted successfully!
File File not found not found.
Service PDRFRAME stopped successfully!
Service PDRFRAME deleted successfully!
File File not found not found.
Service PDRELI stopped successfully!
Service PDRELI deleted successfully!
File File not found not found.
Service PDFRAME stopped successfully!
Service PDFRAME deleted successfully!
File File not found not found.
Service PDCOMP stopped successfully!
Service PDCOMP deleted successfully!
File File not found not found.
Service PCIDump stopped successfully!
Service PCIDump deleted successfully!
File File not found not found.
Service lbrtfdc stopped successfully!
Service lbrtfdc deleted successfully!
File File not found not found.
Service i2omgmt stopped successfully!
Service i2omgmt deleted successfully!
File File not found not found.
Service Changer stopped successfully!
Service Changer deleted successfully!
File File not found not found.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Use Chrome's Settings page to remove the default_search_provider items.
Use Chrome's Settings page to remove the default_search_provider items.
Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Restrictions\ deleted successfully.
Registry key HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Control Panel\ deleted successfully.
ADS C:\Documents and Settings\All Users\Data aplikací\TEMP:CB0AACC9 deleted successfully.
========== FILES ==========
File\Folder C:\WINDOWS\System32\*.tmp not found.
File\Folder C:\WINDOWS\*.tmp not found.
File\Folder C:\WINDOWS\system32\*.tmp.dll not found.
File\Folder C:\WINDOWS\System32\dllcache\*.tmp not found.
File\Folder C:\WINDOWS\system32\SET*.tmp not found.
File\Folder C:\WINDOWS\system32\DUMP*.tmp not found.
File\Folder c:\windows\Tasks\*.job not found.
File\Folder C:\*.tmp not found.
File\Folder C:\WINDOWS\System32\drivers\*.tmp not found.
File\Folder C:\Documents and Settings\All Users\Data aplikací\*.tmp not found.
C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy\Recovery folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy\Logs folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Lavasoft\MiniMessage folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Lavasoft\License folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Lavasoft folder moved successfully.
C:\Documents and Settings\stolní pc\Plocha\SpywareTerminatorSetup.exe moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Avira folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\AVG2014\Chjw folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\AVG2014 folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Kaspersky Lab\PURE13\Encryption folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Kaspersky Lab\PURE13 folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Kaspersky Lab folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Norton\{B7B64E4E-97E8-48AA-AF62-F11B5FF9819D}\FA89976040B1A919B2F68A62DBFF4E35 folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Norton\{B7B64E4E-97E8-48AA-AF62-F11B5FF9819D} folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Norton\{086A63F0-6B13-4F29-9695-134E7A01E963} folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Norton\LocalDumps folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Norton\00000082\00000142\0000070e folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Norton\00000082\00000142 folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Norton\00000082 folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Norton folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\NortonInstaller\Logs\2013-11-21-16h01m21s folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\NortonInstaller\Logs\2013-11-21-15h56m35s folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\NortonInstaller\Logs\2013-11-21-14h43m28s folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\NortonInstaller\Logs\2013-11-21-14h43m21s folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\NortonInstaller\Logs\2013-11-21-14h43m18s folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\NortonInstaller\Logs\2013-11-21-14h36m36s folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\NortonInstaller\Logs\2013-11-21-13h55m25s folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\NortonInstaller\Logs\2013-11-21-13h50m19s folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\NortonInstaller\Logs\2013-11-21-13h50m01s folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\NortonInstaller\Logs\2013-11-21-13h49m47s folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\NortonInstaller\Logs\2013-11-21-13h49m42s folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\NortonInstaller\Logs\2013-11-21-13h44m03s folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\NortonInstaller\Logs\2013-11-21-13h29m47s folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\NortonInstaller\Logs folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\NortonInstaller folder moved successfully.
C:\Documents and Settings\stolní pc\Data aplikací\Ad-Aware Antivirus\Logs\20131116T221053.187500PID2448 folder moved successfully.
C:\Documents and Settings\stolní pc\Data aplikací\Ad-Aware Antivirus\Logs folder moved successfully.
C:\Documents and Settings\stolní pc\Data aplikací\Ad-Aware Antivirus folder moved successfully.
C:\Documents and Settings\stolní pc\Data aplikací\AVG\AWL2014\Dashboard folder moved successfully.
C:\Documents and Settings\stolní pc\Data aplikací\AVG\AWL2014\Backups folder moved successfully.
C:\Documents and Settings\stolní pc\Data aplikací\AVG\AWL2014 folder moved successfully.
C:\Documents and Settings\stolní pc\Data aplikací\AVG\AWL\CrashDumps folder moved successfully.
C:\Documents and Settings\stolní pc\Data aplikací\AVG\AWL folder moved successfully.
C:\Documents and Settings\stolní pc\Data aplikací\AVG folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\AVG\AWL2014 folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\AVG\AWL\Program Statistics folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\AVG\AWL folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\AVG folder moved successfully.
C:\WINDOWS\System32\drivers\sp_rsdrv2.sys moved successfully.
C:\Documents and Settings\All Users\Data aplikací\AVAST Software\Persistent Data\Avast\Logs folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\AVAST Software\Persistent Data\Avast folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\AVAST Software\Persistent Data folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\AVAST Software folder moved successfully.
File\Folder C:\Documents and Settings\stolní pc\Data aplikací\Ad-Aware Antivirus not found.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\\FirstRunDisabled deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore\\DisableSR deleted successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Martin
->Temp folder emptied: 17225114 bytes
->Temporary Internet Files folder emptied: 309629 bytes
->Google Chrome cache emptied: 0 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes

User: stolní pc
->Temp folder emptied: 114688 bytes
->Temporary Internet Files folder emptied: 453478 bytes
->Google Chrome cache emptied: 213325392 bytes
->Flash cache emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 33885224 bytes

Total Files Cleaned = 253,00 mb


OTL by OldTimer - Version 3.2.69.0 log created on 11272013_211437

Files\Folders moved on Reboot...

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Spyware Doctor LOG

Příspěvekod jaro3 » 28 lis 2013 09:54

Co problémy?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

tomaskorbas
Level 1
Level 1
Příspěvky: 58
Registrován: listopad 13
Pohlaví: Muž
Stav:
Offline

Re: Spyware Doctor LOG

Příspěvekod tomaskorbas » 28 lis 2013 14:33

Jo zati m to jde měl jsem naky viry a co jsem měl za problém s počítačem. Dík

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Spyware Doctor LOG  Vyřešeno

Příspěvekod jaro3 » 29 lis 2013 11:36

Virů bylo málo , ale zbytky antivirů dělaly taky zmatek.

Spusť OTL a klikni na Vyčisti.

Pokud nejsou problémy , je to vše a můžeš dát vyřešeno , zelenou fajfku.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 91 hostů